CVE-2002-0487
N/A
N/A
Summary
Intellisol Xpede 4.1 stores passwords in plaintext in a Javascript "session timeout" re-authentication capability, which could allow local users with access to gain privileges of other Xpede users by reading the password from the source file, e.g. from the browser's cache.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/archive/1/263485
- http://www.iss.net/security_center/static/8612.php
- http://www.securityfocus.com/bid/4346
References
- http://www.securityfocus.com/archive/1/263485
- http://www.iss.net/security_center/static/8612.php
- http://www.securityfocus.com/bid/4346
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.